aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorDan Timoney <dtimoney@att.com>2019-06-07 02:12:14 +0000
committerGerrit Code Review <gerrit@onap.org>2019-06-07 02:12:14 +0000
commit3f895e55df8679c65244c8fb5668932f3224293f (patch)
tree9163e5d4d88dedd5656aca89569c921e3574b895
parent33cf532443383aea1504025bdad4005d45dd499a (diff)
parenta7b9337e3691f89d0b3f7e36ab73ef964476a655 (diff)
Merge "Document OJSI-199 (CVE-2019-12112) vulnerability"
Former-commit-id: fd4db3019ed2aa13766de17de8ebf52226b839c2
-rw-r--r--docs/release-notes.rst2
1 files changed, 2 insertions, 0 deletions
diff --git a/docs/release-notes.rst b/docs/release-notes.rst
index 67034c6b..56443f1b 100644
--- a/docs/release-notes.rst
+++ b/docs/release-notes.rst
@@ -50,6 +50,8 @@ The full list of known issues in SDNC may be found in the ONAP Jira at <https://
Fixed temporarily by disabling admportal
- `OJSI-98 <https://jira.onap.org/browse/OJSI-98>`_ In default deployment SDNC (sdnc-portal) exposes HTTP port 30201 outside of cluster.
Fixed temporarily by disabling admportal
+- CVE-2019-12112 `OJSI-199 <https://jira.onap.org/browse/OJSI-199>`_ SDNC service allows for arbitrary code execution in sla/upload form
+ Fixed temporarily by disabling admportal
*Known Security Issues*